Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191471 7.2 危険 マイクロソフト - Microsoft Windows XP 用の I2O Utility Filter ドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0322 2012-09-25 16:59 2008-05-13 Show GitHub Exploit DB Packet Storm
191472 7.5 危険 mapbender - Mapbender における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0301 2012-09-25 16:59 2008-03-11 Show GitHub Exploit DB Packet Storm
191473 6.8 警告 mapbender - Mapbender の mapFiler.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-0300 2012-09-25 16:59 2008-03-11 Show GitHub Exploit DB Packet Storm
191474 7.8 危険 Linux - Linux kernel におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-0352 2012-09-25 16:59 2007-05-8 Show GitHub Exploit DB Packet Storm
191475 5 警告 Mozilla Foundation - Mozilla Firefox におけるフィッシング攻撃などを実行される脆弱性 CWE-200
情報漏えい
CVE-2008-0367 2012-09-25 16:59 2004-05-21 Show GitHub Exploit DB Packet Storm
191476 5 警告 keil-software - PhotoKorn におけるデータベース資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-0297 2012-09-25 16:59 2008-01-16 Show GitHub Exploit DB Packet Storm
191477 7.5 危険 hangzhou rui-qiang - RichStrong CMS の showproduct.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0291 2012-09-25 16:59 2008-01-16 Show GitHub Exploit DB Packet Storm
191478 6.8 警告 mansion productions - MAS の view_func.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-0289 2012-09-25 16:59 2008-01-15 Show GitHub Exploit DB Packet Storm
191479 7.5 危険 imagealbum - ImageAlbum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0288 2012-09-25 16:59 2008-01-15 Show GitHub Exploit DB Packet Storm
191480 5 警告 Alexander Barton - ngIRCd におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2008-0285 2012-09-25 16:59 2008-01-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 12, 2025, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1571 - - - A path handling issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.7.2, macOS Sequoia 15.2, macOS Ventura 13.7.2. An app may be able to overwrite arbitrary files. - CVE-2024-54520 2025-01-29 02:15 2025-01-28 Show GitHub Exploit DB Packet Storm
1572 - - - The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.2, tvOS 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sonoma 14.7.2, macOS Sequoia 15.2. A… - CVE-2024-54468 2025-01-29 02:15 2025-01-28 Show GitHub Exploit DB Packet Storm
1573 - - - gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box. - CVE-2024-50664 2025-01-29 02:15 2025-01-24 Show GitHub Exploit DB Packet Storm
1574 - - - KWHotel 0.47 is vulnerable to CSV Formula Injection in the invoice adding function. - CVE-2023-46401 2025-01-29 02:15 2025-01-24 Show GitHub Exploit DB Packet Storm
1575 - - - Hyperbridge is a hyper-scalable coprocessor for verifiable, cross-chain interoperability. A critical vulnerability was discovered in the ismp-grandpa crate, that allowed a malicious prover easily con… CWE-347
CWE-670
 Improper Verification of Cryptographic Signature
 Always-Incorrect Control Flow Implementation
CVE-2025-24800 2025-01-29 01:15 2025-01-29 Show GitHub Exploit DB Packet Storm
1576 - - - In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local P… CWE-114
 Process Control
CVE-2025-23385 2025-01-29 01:15 2025-01-29 Show GitHub Exploit DB Packet Storm
1577 - - - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. The file upload feature allows to upload arbitrary files, including html and svg. Both can contain… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2025-23213 2025-01-29 01:15 2025-01-29 Show GitHub Exploit DB Packet Storm
1578 - - - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. The external storage feature allows any user to enumerate the name and content of files on the ser… CWE-200
Information Exposure
CVE-2025-23212 2025-01-29 01:15 2025-01-29 Show GitHub Exploit DB Packet Storm
1579 - - - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. A Jinja2 SSTI vulnerability allows any user to execute commands on the server. In the case of the … CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2025-23211 2025-01-29 01:15 2025-01-29 Show GitHub Exploit DB Packet Storm
1580 - - - Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. An attacker with an account on an affected CVAT instance is able to run arbitrary code in… CWE-502
 Deserialization of Untrusted Data
CVE-2025-23045 2025-01-29 01:15 2025-01-29 Show GitHub Exploit DB Packet Storm